Lucene search

K

Client Application Access Security Vulnerabilities

cve
cve

CVE-2016-0270

IBM Domino 9.0.1 Fix Pack 3 Interim Fix 2 through 9.0.1 Fix Pack 5 Interim Fix 1, when using TLS and AES GCM, uses random nonce generation, which makes it easier for remote attackers to obtain the authentication key and spoof data by leveraging the reuse of a nonce in a session and a "forbidden att...

5.9CVSS

5.5AI Score

0.005EPSS

2017-02-08 04:59 PM
30
cve
cve

CVE-2017-1711

IBM iNotes 8.5 and 9.0 SUService can be misguided into running malicious code from a DLL masquerading as a windows DLL in the temp directory. IBM X-Force ID: 134532.

7.8CVSS

7.2AI Score

0.001EPSS

2018-02-13 08:29 PM
24
cve
cve

CVE-2017-1714

IBM Notes and Domino NSD 8.5 and 9.0 could allow an authenticated local user without administrative privileges to gain System privilege. IBM X-Force ID: 134633.

7.8CVSS

7.3AI Score

0.0004EPSS

2018-02-13 08:29 PM
30
cve
cve

CVE-2017-1720

IBM Notes 8.5 and 9.0 could allow a local attacker to execute arbitrary commands by carefully crafting a command line sent via the shared memory IPC. IBM X-Force ID: 134807.

5.3CVSS

5.8AI Score

0.0004EPSS

2018-02-13 08:29 PM
26
cve
cve

CVE-2018-1409

IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138708.

7.8CVSS

7.5AI Score

0.0004EPSS

2018-02-19 02:29 PM
21
cve
cve

CVE-2018-1410

IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138709.

7.8CVSS

7.5AI Score

0.0004EPSS

2018-02-19 02:29 PM
24
cve
cve

CVE-2018-1411

IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138710.

7.8CVSS

7.5AI Score

0.0004EPSS

2018-02-19 02:29 PM
26